I need your help. Before posting i did search but found nothing.
I have to block facebook youtube etc. For these purposes i went with transparent web proxy. But it works only few minutes after router restarted. and then it again allows everyone acces to blocked sites.
Any suggestions, tuning? Connection limits ?
Configs:
Code: Select all
ip proxy print
enabled: yes
src-address: 0.0.0.0
port: 8080
parent-proxy: 0.0.0.0
parent-proxy-port: 0
cache-administrator: webmaster
max-cache-size: none
cache-on-disk: no
max-client-connections: 600
max-server-connections: 600
max-fresh-time: 3d
serialize-connections: no
always-from-cache: no
cache-hit-dscp: 4
cache-drive: system
Code: Select all
/ip proxy access
add action=deny comment=fb-blc disabled=no dst-host=facebook.com dst-port=80
add action=deny comment=fb-blc disabled=no dst-host=.facebook.com dst-port=80
add action=deny comment=youtube-blc disabled=no dst-host=youtube.com dst-port=80
add action=deny comment=youtube-blc disabled=no dst-host=*tube*.com dst-port=80
Code: Select all
/ip firewall nat
add action=redirect chain=dstnat comment="WebProxy redirect" disabled=no dst-port=80 in-interface=ether5 protocol=tcp src-address-list=!Exception to-ports=8080